>> IBM Lotus Sametime Community Services Multiplexer Vulnerability
Title : IBM Lotus Sametime Community Services Multiplexer Vulnerability VUPEN ID : VUPEN/ADV-2008-1595 CVE ID : CVE-2008-2499
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-05-21
Technical Description
A vulnerability has been identified in IBM Lotus Sametime, which could be exploited by remote attackers to cause a denial of service or take complete control of an affected system. This issue is caused by a buffer overflow error in the Sametime Community Services multiplexer (MUX) when processing malformed HTTP requests, which could be exploited by remote attackers to crash an affected server or execute arbitrary code.